CWE-352

Medium likelihood

Cross-Site Request Forgery (CSRF)

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

9,321 vulnerabilities with CWE-352
CVE-2025-67595 MEDIUM
Ays Pro Quiz Maker <= 6.7.0.82 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-67593 MEDIUM
UsersWP <= 1.2.48 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-67591 MEDIUM
JNews Paywall < 12.0.1 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-67590 MEDIUM
Rustaurius Ultimate FAQ <= 2.4.3 - CSRF
CVSS 4.3
CVE-2025-67534 HIGH
Rencontre <= 3.13.7 - Cross-Site Request Forgery
CVSS 7.1
CVE-2025-67473 MEDIUM
codeworkweb CWW Companion <= 1.3.2 - CSRF
CVSS 4.3
CVE-2025-67472 MEDIUM
vcita Online Booking & Scheduling Calendar for WordPress by vcita <= 4.5.5 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-67471 MEDIUM
Saad Iqbal Quick Contact Form <= 8.2.5 - CSRF
CVSS 4.3
CVE-2025-67469 MEDIUM
kubiq PDF Thumbnail Generator - CSRF
CVSS 4.3
CVE-2025-67467 MEDIUM
GiveWP <= 4.13.1 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-67465 MEDIUM
QuantumCloud Simple Link Directory <= 8.8.3 - CSRF
CVSS 4.3
CVE-2025-66531 MEDIUM
Salon booking system <10.30.3 - CSRF
CVSS 4.3
CVE-2025-66529 MEDIUM
Ays Pro Chartify <= 3.6.3 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-64256 MEDIUM
PressTigers Simple Folio <=1.1.0 - CSRF
CVSS 4.3
CVE-2025-63060 MEDIUM
KALLYAS < 4.25.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-63030 HIGH
Saad Iqbal New User Approve <= 3.2.0 - CSRF
CVSS 7.1
CVE-2025-63012 MEDIUM
ThimPress WP Hotel Booking <= 2.2.8 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-62873 MEDIUM
WP Flashy Marketing Automation <2.0.9 - CSRF
CVSS 4.3
CVE-2025-62872 MEDIUM
JK Social Photo Fetcher <= 3.0.4 - CSRF
CVSS 4.3
CVE-2025-62871 MEDIUM
Just TinyMCE Custom Styles <= 1.2.1 - CSRF
CVSS 4.3
CVE-2025-62866 MEDIUM
Valerio Monti Auto Alt Text <= 2.5.2 - CSRF
CVSS 4.3
CVE-2025-62762 MEDIUM
photoboxone SMTP Mail <1.3.47 - CSRF
CVSS 4.3
CVE-2025-62739 MEDIUM
SaifuMak Add Custom Codes <= 4.80 - CSRF
CVSS 6.5
CVE-2025-62734 MEDIUM
Media Library Downloader <= 1.4.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-62733 MEDIUM
ProteusThemes Custom Sidebars - CSRF
CVSS 4.3
Details
Vulnerabilities 9,321
Exploit Likelihood Medium